Skip to content

Latest commit

 

History

History
34 lines (30 loc) · 3.19 KB

File metadata and controls

34 lines (30 loc) · 3.19 KB

TargetCreateLetsEncrypt

targetCreateLetsEncrypt is a command that creates a new Let's Encrypt target

Properties

Name Type Description Notes
acme_challenge str [optional] [default to 'http']
delete_protection str Protection from accidental deletion of this object [true/false] [optional]
description str Description of the object [optional]
dns_propagation_wait str Fixed wait after TXT publish (e.g. 30s, 2m). If omitted with pre-check on, no extra sleep (polling only). If omitted with --dns-skip-precheck, gateway uses 30s. DNS challenge only [optional]
dns_resolvers list[str] Custom DNS resolvers (ip:port) for DNS-01. Repeat for multiple. If omitted, Lego uses /etc/resolv.conf or Google Public DNS. DNS challenge only [optional]
dns_skip_precheck bool Skip DNS TXT pre-check before CA validation. If --dns-propagation-wait is omitted and this flag is set, gateway waits 30s before CA validation. DNS challenge only [optional]
dns_target_creds str Name of existing cloud target for DNS credentials. Required when acme-challenge=dns. Supported: AWS, Azure, GCP, Cloudflare targets [optional]
dns_timeout str Per-query DNS lookup timeout during pre-check (e.g. 10s), not total poll time. If omitted with pre-check on, Lego library default applies (10s per query on Linux). Ignored when --dns-skip-precheck is set. DNS challenge only [optional]
dns_zone str Cloudflare DNS zone identifier. Required when dns-target-creds points to Cloudflare target [optional]
email str Email address for ACME account registration
gcp_project str GCP Cloud DNS: Project ID. Optional - can be derived from service account [optional]
hosted_zone str AWS Route53 hosted zone ID. Required when dns-target-creds points to AWS target [optional]
json bool Set output format to JSON [optional] [default to False]
key str The name of a key that used to encrypt the target secret value (if empty, the account default protectionKey key will be used) [optional]
lets_encrypt_url str [optional] [default to 'production']
lock_on_read str Lock this secret after each successful value read [optional]
lock_ttl str Lock TTL in minutes [optional]
max_versions str Set the maximum number of versions, limited by the account settings defaults. [optional]
name str Target name
resource_group str Azure resource group name. Required when dns-target-creds points to Azure target [optional]
rotate_on_unlock str Rotate this secret after it is unlocked [optional]
timeout str [optional] [default to '5m']
token str Authentication token (see `/auth` and `/configure`) [optional]
uid_token str The universal identity token, Required only for universal_identity authentication [optional]

[Back to Model list] [Back to API list] [Back to README]